Skip to content
Saturday, June 27, 2026
  • Splunk Enterprise RCE Shows SIEM Servers Are Tier-Zero Infrastructure
  • NAIC Breach Shows Why PeopleSoft Internet Exposure Needs Immediate Review
  • Hospitality Photo-ZIP Campaign Shows Front Desk Workflows Are Initial Access Paths
  • CL-STA-1062 Shows Critical Infrastructure Intrusions Still Start With Web Shells
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
  • Splunk Enterprise RCE Shows SIEM Servers Are Tier-Zero Infrastructure
  • NAIC Breach Shows Why PeopleSoft Internet Exposure Needs Immediate Review
  • Hospitality Photo-ZIP Campaign Shows Front Desk Workflows Are Initial Access Paths
  • CL-STA-1062 Shows Critical Infrastructure Intrusions Still Start With Web Shells
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
  • Home
  • General CTI
  • Page 16

General CTI

  • General CTI

Nike Investigates 1.4 TB Data Leak After World Leaks Ransomware Gang Posts Stolen Files

acint5 months ago02 mins

Nike confirms it is investigating a potential breach after the World Leaks ransomware gang claimed to have stolen 1.4 TB of corporate data. The group, a rebrand of Hunters International, has targeted major organizations including the U.S. Marshals Service and Tata Technologies.

Read More
  • General CTI

WinRAR CVE-2025-8088: Russia, China, and Cybercriminals Unite to Exploit Path Traversal Flaw

acint5 months ago02 mins

Google Threat Intelligence reveals widespread exploitation of CVE-2025-8088 by Russian APT groups, Chinese actors, and cybercriminals. The WinRAR path traversal flaw enables payload delivery via the Windows Startup folder, with active campaigns targeting Ukraine, LATAM, and financial sectors.

Read More
  • General CTI

Microsoft to Disable 30-Year-Old NTLM Authentication Protocol by Default

acint5 months ago5 months ago02 mins

Microsoft announces NTLM will be disabled by default in upcoming Windows releases, marking the end of the 30-year-old authentication protocol that has been a persistent security vulnerability.

Read More
Mobile device security concept with digital vulnerabilities
  • General CTI

Ivanti Patches Two Critical EPMM Zero-Day Vulnerabilities Under Active Exploitation

acint5 months ago02 mins

Two critical CVSS 9.8 vulnerabilities in Ivanti Endpoint Manager Mobile (CVE-2026-1281, CVE-2026-1340) are under active exploitation, allowing unauthenticated remote code execution. CISA has added them to the KEV catalog with a February 1 federal deadline.

Read More
  • General CTI

Ivanti EPMM Zero-Days Actively Exploited: Pre-Auth RCE via Bash Arithmetic Expansion

acint5 months ago5 months ago02 mins

Two actively exploited pre-auth RCE vulnerabilities (CVE-2026-1281 and CVE-2026-1340) in Ivanti Endpoint Manager Mobile allow attackers to execute arbitrary commands via Bash arithmetic expansion. CISA has added these to the KEV catalog.

Read More
  • General CTI

SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 Score

acint5 months ago02 mins

SmarterTools patches critical CVE-2026-24423 (CVSS 9.3) unauthenticated RCE vulnerability in SmarterMail email server. Two other flaws including one under active exploitation also addressed. Update immediately.

Read More
  • General CTI

SolarWinds Fixes Six Critical Web Help Desk Vulnerabilities Including RCE and Auth Bypass

acint5 months ago02 mins

SolarWinds patches six severe vulnerabilities in Web Help Desk, including four critical flaws (CVSS 9.8) enabling unauthenticated remote code execution and authentication bypass. Organizations should update to WHD 2026.1 immediately.

Read More
  • General CTI

Fortinet Blocks Actively Exploited FortiCloud SSO Zero-Day Until Patch is Ready

acint5 months ago02 mins

Fortinet confirms CVE-2026-24858, a critical FortiCloud SSO authentication bypass zero-day actively exploited in the wild. The company has blocked FortiCloud SSO from vulnerable devices while patches are being developed.

Read More
  • General CTI

Critical Microsoft Office Vulnerabilities Exploited in Latest Cyber Threat Campaign

acint5 months ago5 months ago02 mins

Security researchers have identified sophisticated attack vectors leveraging Microsoft Office documents to bypass security measures and deliver malicious payloads. Learn about the latest threats and defensive strategies.

Read More
  • General CTI
  • Offensive Devices / Tactics
  • Red Teaming

THIS WEEK IN SECURITY: LOOP DOS, FLIPPER RESPONDS, AND MORE!

bulwarkblack2 years ago2 years ago05 mins

by: Jonathan Bennett Here’s a fun thought experiment. UDP packets can be sent with an arbitrary source IP and port, so you can send a packet to one server, and could aim the response at another server. What happens if that response triggers another response? What if you could craft a packet that continues that cycle…

Read More
  • 1
  • …
  • 14
  • 15
  • 16
  • 17

File Search

2
ThumbNameSizeDate
Thumb IOCs_YARA_TTPs_Posted_Articles/ IOCs_YARA_TTPs_Posted_Articles

IOCs_YARA_TTPs_Posted_Articles

Open 99.71 KB 2024-01-12 January 12, 2024 2024-03-22 March 22, 2024
21 Items
99.71 KB
March 22, 2024

0

0bd2c4ab56

2026 Powered By BlazeThemes.